Strengthen the SFTP User Authentication Using Sterling External Authentication Server
This scenario builds on the basic SFTP configuration by adding user and password authentication or user and key authentication using information defined in Sterling External Authentication Server. To provide a more advanced method of securing the SFTP connection, use Sterling External Authentication Server.
Authenticate an Inbound SFTP User or Key Using Sterling External Authentication Server
You can authenticate an inbound connection against information stored in an LDAP database by configuring Sterling External Authentication Server to define how the connection is authenticated. The Sterling External Authentication Server definition determines the options that are enabled. Sterling External Authentication Server will return a user ID, password, and routing name for a local user key stored on Secure Proxy. Refer to Sterling External Authentication Server documentation library for the functions that can be performed in Sterling External Authentication Server.
Authenticate an Inbound SFTP User or Key Using Sterling External Authentication Server Worksheet
Use the following worksheet to identify the information needed to authenticate a trading partner user ID, password, or key using Sterling External Authentication Server. Update the policy you created in the Basic Configuration for this scenario.
Configuration Manager Field |
Feature |
Value |
|---|---|---|
Policy Name |
Name of policy associated with the inbound node. |
|
Required Authentication Method |
Method to use to authenticate the inbound node.
Options include:
|
|
User Authentication - Through External Authentication |
Enable this option because you will validate user information using Sterling External Authentication Server. |
|
User Authentication Profile |
If you are authenticating a user ID and password, type the name of the profile defined in Sterling External Authentication Server used to authenticate the user. |
|
Key Authentication Profile |
If you are authenticating the user ID and key, type the name of the profile defined in Sterling External Authentication Server to authenticate the key. |